AbuseIPDB » 185.5.252.209

185.5.252.209
Activity Trending Down This IP hasn't received reports recently, which causes the score to decay.
29 reports found in our database
85% Critical
Abuse confidence score ?
ISP
AS6723 LIMITED LIABILITY COMPANY
Usage Type
Fixed Line ISP
ASN
Hostname(s)
pool185-5-252-209.as6723.net
Domain Name
as6723.net
Country
🇺🇦 Ukraine
City
Lviv, Lviv

IP info including ISP, Usage Type, and Location provided by IPInfo. Updated weekly.

Log in to view charts and search reports for this IP. Log In

Top Reporter Countries (Last 60 Days)

Example preview

Report Categories (Last 60 Days)

Example preview

Reports Activity

Example preview
Account required for the enhanced features Log in Sign up

IP Abuse Reports for 185.5.252.209:

This IP address has been reported a total of 29 times from 24 distinct sources. 185.5.252.209 was first reported on , and the most recent report was . In the last 60 days, the top reporter locations were: United States of America with 8 reports; Germany with 5 reports; France with 5 reports. The most common categories in these recent reports were: Port Scan 21 times; Hacking 9 times; Brute-Force 8 times; Exploited Host 4 times; IoT Targeted 2 times; Other 5 times.

Reporter IoA Timestamp (UTC) Comment Categories
🇲🇳 Public CSIRT/CC of Mongolia
Honeypot hit: Unauthorized connection attempt detected on 23/TELNET
Hacking IoT Targeted Port Scan
Anonymous
IP & Port Scan.
SSH Port Scan Brute-Force
🇸🇬 drewf.ink
[13:39] Attempted telnet login with credentials root:1******i
Brute-Force Exploited Host
🇫🇷 security.rdmc.fr
Port Scan Attack proto:TCP src:55672 dst:23
Port Scan
🇺🇸 drewf.ink
[11:18] Attempted telnet login with credentials root:a1********9k
Brute-Force Exploited Host
🇳🇱 EGP Abuse Dept
Unauthorized connection to Telnet port 23
Port Scan Hacking
🇺🇸 xmission.com
Port Scan Hacking Brute-Force
🇫🇷 Entalpi.net
Tried to hit sensible closed port commonly used in attacks
Port Scan Hacking
🇺🇸 mibbsdevs
Honeypot Trap: Port scanning or connection attempt (Ports 21/22/23/3306/3389/5432).
Port Scan Hacking
Anonymous
denied Telnet access attempt. destination port 23.
Port Scan Brute-Force
🇺🇸 RAP
2026-08-21 04:58:40 UTC Unauthorized activity to TCP port 23. Telnet
Port Scan
🇦🇺 dyln
Dyls honeypot brute-force: Telnet (7 total hits)
Brute-Force
🇫🇷 EvoX
🛡️ Honeypot [bsts-tpot-hive]: Unauthorized connection attempt detected on 23/TELNET
Hacking Port Scan
🇧🇾 sashan
Port Scan
🇵🇱 nfsec.pl
Detected: TCP scan on port: 23 with flags: SYN
Port Scan

Showing 1 to 15 of 29 reports


Think this IP has been falsely reported? You may request to have the associated reports reviewed and removed. Request Takedown 🚩

Recently Reported IPs:

🇰🇷 175.215.243.120
🇧🇩 161.248.189.72
🇮🇳 103.70.40.36
🇺🇸 66.132.172.229
🇺🇸 65.49.20.102
🇫🇷 51.91.8.17
🇹🇭 43.173.248.207
🇺🇸 34.86.137.72
🇮🇳 20.235.109.206
🇺🇸 195.184.76.65
🇳🇱 193.176.31.228
🇨🇴 191.111.5.134
🇻🇳 103.156.48.11
🇵🇰 103.82.121.184
🇫🇷 91.231.89.207
🇱🇹 62.60.130.253